CVE-2021-29450 - log back

CVE-2021-29450 edited at 16 Apr 2021 11:27:30
References
https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-pmmh-2f36-wvhq
+ https://github.com/WordPress/wordpress-develop/commit/7ef3d73455f0eade737b61e0fbcf61cf0abff73e
CVE-2021-29450 edited at 16 Apr 2021 11:22:42
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Remote
Type
- Unknown
+ Information disclosure
Description
+ One of the blocks in the WordPress editor can be exploited in a way that exposes password-protected posts and pages. This requires at least contributor privileges. This has been patched in WordPress 5.7.1, along with the older affected versions via minor releases.
References
+ https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-pmmh-2f36-wvhq
Notes
CVE-2021-29450 created at 16 Apr 2021 11:20:35